📦

ws_ftp_server

Vendor: progress

Actively Exploited 1 CISA KEV List
PoC / Exploits 9 Code Available
Total RCEs 7 Remote Access
Total CVEs 30 Total Indexed
Avg. EPSS 16.98% Exploit Prob.
Latest CVE CVE-2024-7745 Aug 28

Security Vulnerability Index

Page 3 / 3
7.2 CVSS
CVE-2004-1883
Exploit Found

Multiple buffer overflows in Ipswitch WS_FTP Server 4.0.2 (1) allow remote authenticated users to execute arbitrary code by causing a large error string to be generated by the ALLO handler, or (2) may allow remote FTP administrators to execute arbitrary code by causing a long hostname or username to be inserted into a reply to a STAT command while a file is being transferred.

EPSS: 2.21%
5.0 CVSS
CVE-2004-1643
Exploit Found

WS_FTP 5.0.2 allows remote authenticated users to cause a denial of service (CPU consumption) via a CD command that contains an invalid path with a "../" sequence.

EPSS: 12.57%
7.5 CVSS

Ipswitch WS_FTP Server 4.0.2 has a backdoor XXSESS_MGRYY username with a default password, which allows remote attackers to gain access.

EPSS: 1.12%
7.5 CVSS
CVE-2003-0772
Exploit Found

Multiple buffer overflows in WS_FTP 3 and 4 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via long (1) APPE (append) or (2) STAT (status) arguments.

EPSS: 83.20%
7.5 CVSS

Buffer overflow in WS_FTP FTP Server 3.1.1 allows remote authenticated users to execute arbitrary code via a long SITE CPWD command.

EPSS: 12.85%
7.5 CVSS
CVE-2001-1021
RCE Exploit Found

Buffer overflows in WS_FTP 2.02 allow remote attackers to execute arbitrary code via long arguments to (1) DELE, (2) MDTM, (3) MLST, (4) MKD, (5) RMD, (6) RNFR, (7) RNTO, (8) SIZE, (9) STAT, (10) XMKD, or (11) XRMD.

EPSS: 59.79%
4.6 CVSS
CVE-1999-1171
Exploit Found

IPswitch WS_FTP allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920.

EPSS: 0.01%
4.6 CVSS
CVE-1999-1170
Exploit Found

IPswitch IMail allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920.

EPSS: 0.01%